We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.

Job posting has expired

#alert
Back to search results

Attack Surface Management Security Architect 1444153

Cisco Systems, Inc.
United States, North Carolina, Durham
Oct 14, 2025

The application window is expected to close on: October 18, 2025

Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received.

The successful applicant may be performing work on FedRamp environments and partnering with researchers and threat intel teams that require they be a U.S. Person (i.e. U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee). This position may also perform work that the U.S. government has specified can only be performed by a U.S. Citizen on U.S. soil.

Meet the Team

The Cisco Attack Surface Management (ASM) Team is a highly skilled and dynamic group focused on detecting and remediating Cisco's operational security risks inclusive of IT services, acquisitions, and BU operated infrastructure and services, initially concentrating on identifying and reducing risks associated with Cisco's external perimeter.

The ASM service unifies tooling sources of truth, mis-configurations, and vulnerability data collected to enable executive accountability and track the prioritized remediation of all exploitable weaknesses within target operational level agreements. The team is at the forefront of cybersecurity, employing ground breaking technologies and methodologies to detect, analyze, and proactively address attack surface threats.

Your Impact

We are seeking an enthusiastic and motivated Security Architect to support the implementation, client-facing delivery, and continuous improvement of our attack surface management service. This role will contribute to the proactive, sustainable, and measurable reduction of operational risk at Cisco, addressing foundational improvements and security root cause resolution.

Multi-Functional Collaboration: Team members work closely with experts across various domains, including investigations, analysis, vulnerability management, security architecture, threat intelligence, cyber legal, data protection, and compliance, providing opportunities to learn and grow while addressing sophisticated challenges.

Key Responsibilities:

* Be a trusted security architect across every business unit for exposure detection and remediation

* Lead multiple client engagements using a campaign-based, risk remediation approach as part of a bi-directional partnership with active Business Unit/Business Entity contacts to serve last mile capabilities at scale

* Lead exposure management campaigns across the organization using tools and platforms like Axonius, BishopFox, Tenable, Wiz, and a variety of authoritative tools to provide insight for rapid remediation.

* Design and execute security campaigns informed by vulnerability discovery, mis-configurations, and attack surface analysis using automated and manual techniques.

* Identify gaps in tooling and visibility of operational assets and assist the clients and ASM Platform team in discovery of unknowns and enabling new data feeds.

* Lead collaboration with key partners within the Security & Trust Organization including security operations, incident response, risk management, and offensive security teams to drive risk reduction.

* Know the latest with emerging threats, attack techniques, and ASM technologies to continuously enhance the ASM program.

* Provide guidance and training to security teams on security protocols and tools.

* Foster long-term relationships with key client partners, understanding their critical business needs and helping them to proactively identify and address operational security risk.

* Leverage your superb communication skills to articulate sophisticated security concepts to technical and non-technical partners.

Minimum Qualifications

* Bachelor's degree in Cybersecurity, Intelligence, or related field.

* 7+ years of experience in threat intelligence, cybersecurity, or security operations.

* Expertise in vulnerability management, threat modeling, and security risk assessment.

* Solid knowledge of network, endpoint, server, and application security fundamentals.

Preferred Qualifications

* Ability to read/understand exploit code, development skills, and think like an attacker.

* Certified Threat Intelligence Analyst (CTIA) or GIAC Cyber Threat Intelligence (GCTI).

* Solid experience in integrating threat intelligence into security operations, including experience with API integrations, automated scanning, and security analytics.

* Ability to work collaboratively in cross-functional teams and lead security initiatives.

Why Cisco!

At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint. Simply put - we power the future.

Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.

We are Cisco, and our power starts with you.

STO25

(web-675dddd98f-zqw5m)